发现优质的 AI Agent 技能
聚合 Claude Skills、LangChain、AutoGPT 等优质资源,助力开发者快速构建智能应用
CRED-OMEGA: Security Engine for All API Keys (Enterprise)
来自 sickn33/antigravity-awesome-skills 技能
Dependency Audit and Security Analysis Implementation Playbook
This file contains detailed patterns, checklists, and code samples referenced by the skill.
Audit Skills (Premium Universal Security)
来自 sickn33/antigravity-awesome-skills 技能
API Security Testing
> Principles for testing API security. OWASP API Top 10, authentication, authorization testing.
STRIDE & PASTA Threat Modeling Guide
> Practical guide for threat modeling systems, APIs, and AI agents. > Use this when performing `007 threat-model` or any security analysis that requires structured threat identification.
OWASP Top 10 Checklists
> Quick-reference checklists for the three most relevant OWASP Top 10 lists. > Use during code reviews, security audits, and threat modeling.
API Security Patterns & Anti-Patterns
> Reference for securing REST APIs, webhooks, and service-to-service communication. > Use during `007 audit`, `007 threat-model`, and code reviews of API code.
AI Agent & LLM Pipeline Security Guide
> Security patterns, attacks, and defenses for AI agents, LLM applications, and prompt pipelines. > Reference for `007 audit` and `007 threat-model` when analyzing AI/LLM systems.
PRD rules
- Open with Context & Why Now; Users & JTBD; Success metrics (leading/lagging). - Number functional requirements; each with acceptance criteria. - Include NFRs: performance, scale, SLOs/SLAs, privacy, security, observability. - Scope in/out; rollout plan; risks & open questions. - Context, users, goals
Review focus
- Correctness & tests; security & dependency hygiene; architectural boundaries. - Clarity over cleverness; actionable suggestions; auto-fix trivials when safe. - Verdict: [NEEDS REVISION | APPROVED WITH SUGGESTIONS] - Blockers: N | High: N | Medium: N - file:line — issue — specific fix suggestion
ZugaShield Security Scanner
7-layer AI security scanning plugin for OpenClaw. Protects all channels simultaneously by hooking into the Gateway — the single chokepoint for all traffic.